RISK

NEWS

GDPR codes of conduct guidance launched

3 Mar 2020

The ICO has published guidance for organisations wanting to develop GDPR Codes of Conduct and Certification schemes to help demonstrate accountability under the General Data Protection Regulation (GDPR).

Organisations can now submit their proposals for GDPR Codes of Conduct or Certification scheme criteria to the ICO for approval, helping both data controllers and processors demonstrate compliance with the GDPR.

Ian Hulme, ICO Director of Regulatory Assurance, said:

“I would encourage any organisation that can speak on behalf of a group of organisations, or who has expertise in developing standards or certification criteria, to have a look at our guidance and speak to us about developing a GDPR Code of Conduct or Certification scheme.

“Both mechanisms are a really good way for organisations to show their commitment to complying with data protection legislation and ultimately, build public trust and confidence in their organisation.”

Accountability is an important data protection principle and means organisations must be able to demonstrate their compliance with the GDPR. Codes of Conduct and Certification schemes are both important voluntary accountability tools.

Codes of Conduct provisions, set out in the GDPR, help organisations – such as trade, membership or professional bodies – to support compliance with data protection issues identified or specific to their sector. Organisations will be able to sign up to an ICO approved Code of Conduct to demonstrate their compliance with data protection legislation. Codes of Conduct can be submitted to the ICO for approval now.

Certification is a separate provision under the GDPR. It will give businesses a tool that they can use to enhance trust in their business and demonstrate their commitment to compliance to their customers.

Scheme criteria can now be submitted for ICO approval. Controllers and processors will then be able to apply to have their personal data processing certified under the relevant scheme.

To find out more go to https://ico.org.uk/

You may also be interested in

RELATED CONTENT

RELATED COURSES

Risk Assessment and Method Statements (RAMS)
Risk Assessment and Method Statements (RAMS)

The Risk Assessment and Method Statement (RAMS) course examines the HSE’s recognised five-step approach to risk assessment.

IOSH Managing Safely
IOSH Managing Safely

The world’s best-known health and safety certificate, designed for managers and supervisors in any sector or organisation.

IOSH Safety for Executives and Directors
IOSH Safety for Executives and Directors

IOSH Safety for Executives and Directors is designed for those who have operational or strategic accountability for a company.

Introduction to health and safety
Introduction to health and safety

Introduction to health and safety gives learners a basic introduction to managing safety in their workplace.

Data breaches: your best chance of survival
Data breaches: your best chance of survival

Data breaches: your best chance of survival

Data Sharing Code of Practice laid before Parliament
Data Sharing Code of Practice laid before Parliament

The government has laid a code of practice on data sharing before Parliament, which aims to assist organisations in legally sharing data.

Firms warned to be responsible when transferring client data
Firms warned to be responsible when transferring client data

The current economic climate is changing the way many firms operate, causing some to leave the market or merge with other firms. When this happens, th...

TikTok fined £12.7 million for misusing children’s data
TikTok fined £12.7 million for misusing children’s data

The Information Commissioner’s Office (ICO) has issued a £12,700,000 fine to TikTok Information Technologies UK Limited and TikTok Inc (TikTok) for a ...